06-05-2003 07:00 PM - edited 02-21-2020 10:07 AM
Hi,
I am using a 1710 router for VPN client access. Can I use the Microsoft Windows 2000 IAS as a radius server for client authentication.
Thanks.
Regards,
Douglas
06-05-2003 10:27 PM
Sure. Configure the router for a standard VPN client connection using this:
http://www.cisco.com/warp/public/480/ipsec-ios-tacacs.html
This details using TACACS authentication, so just change the keyword TACACS in the "aaa authen" line to radius, and add a radius-server command pointing to the IAS server.
Then, this sample config will show you how to configure the IAS side of things:
http://www.cisco.com/warp/public/110/cvpn3k_pix_ias.html
Sorry, don't have a sample config for router to IAS radius specifically, so you'll have to join the two configs above together somewhat.
06-19-2003 10:59 AM
Yes, I have a PIX and a router doing that. There are many examples on the CCO for that.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide